GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,455
Maven
5,000+
npm
5,000+
NuGet
1,090
pip
5,000+
Pub
13
RubyGems
1,135
Rust
1,509
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
191 advisories
Filter by severity
Socket.IO: Engine.IO Polling Transport Connection Exhaustion
High
CVE-2026-59725
was published
for
engine.io
(npm)
Jul 20, 2026
DVP80ES3 with
Improper Resource Shutdown or Release vulnerability.
High
Unreviewed
CVE-2026-12575
was published
Jul 1, 2026
An issue in the DSO::mmap_and_copy function of relibc commit 61f42d allows attackers to cause a...
High
Unreviewed
CVE-2026-38641
was published
Jun 26, 2026
A denial of service security issue exists in the
affected product. The security issue stems from...
High
Unreviewed
CVE-2026-11317
was published
Jun 16, 2026
Idira Endpoint Privilege Manager Linux Agent versions prior to 26.5 allow a local attacker to...
High
Unreviewed
CVE-2026-45174
was published
Jun 12, 2026
Dalfox has an Unauthenticated Remote DoS via Closed-Channel Write in `ParameterAnalysis` (server mode)
High
CVE-2026-45090
was published
for
github.com/hahwul/dalfox
(Go)
May 12, 2026
Netmaker Vulnerable to Denial of Service via Server Shutdown Endpoint
High
CVE-2026-29771
was published
for
github.com/gravitl/netmaker
(Go)
Mar 4, 2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ...
High
Unreviewed
CVE-2026-1876
was published
Mar 3, 2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ...
High
Unreviewed
CVE-2026-1875
was published
Mar 3, 2026
An issue in Beat XP VEGA Smartwatch (Firmware Version - RB303ATV006229) allows an attacker to...
High
Unreviewed
CVE-2025-69821
was published
Jan 22, 2026
An issue in the Bluetooth firmware of JXL 9 Inch Car Android Double Din Player Android v12.0...
High
Unreviewed
CVE-2025-63895
was published
Dec 10, 2025
Jenkins has a Denial of service vulnerability in HTTP-based CLI
High
CVE-2025-67635
was published
for
org.jenkins-ci.main:cli
(Maven)
Dec 10, 2025
When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service...
High
Unreviewed
CVE-2025-47148
was published
Oct 15, 2025
A vulnerability was found in Tenda W12 3.0.0.6(3948). The impacted element is the function...
High
Unreviewed
CVE-2025-11550
was published
Oct 9, 2025
An improper resource shutdown or release vulnerability has been identified in the Click Plus C2...
High
Unreviewed
CVE-2025-57882
was published
Sep 24, 2025
An improper resource shutdown or release vulnerability has been identified in the Click Plus C2...
High
Unreviewed
CVE-2025-58473
was published
Sep 24, 2025
Vulnerability in SK Hynix DDR5 on x86 allows a local attacker to trigger Rowhammer bit flips...
High
Unreviewed
CVE-2025-6202
was published
Sep 15, 2025
Undertow MadeYouReset HTTP/2 DDoS Vulnerability
High
CVE-2025-9784
was published
for
io.undertow:undertow-core
(Maven)
Sep 2, 2025
A vulnerability in the TLS 1.3 implementation for a specific cipher for Cisco Secure Firewall...
High
Unreviewed
CVE-2025-20127
was published
Aug 14, 2025
Apache Tomcat Improper Resource Shutdown or Release vulnerability
High
CVE-2025-48989
was published
for
org.apache.tomcat.embed:tomcat-embed-core
(Maven)
Aug 13, 2025
A vulnerability has been found in INSTAR 2K+ and 4K 3.11.1 Build 1124. This vulnerability affects...
High
Unreviewed
CVE-2025-8761
was published
Aug 13, 2025
A vulnerability was found in D-Link DI-8400 16.07.26A1. It has been classified as problematic....
High
Unreviewed
CVE-2025-8175
was published
Jul 26, 2025
In the Linux kernel, the following vulnerability has been resolved:
net: usb: lan78xx: fix WARN...
High
Unreviewed
CVE-2025-38385
was published
Jul 25, 2025
An Improper Resource Shutdown or Release vulnerability in the SIP ALG of Juniper Networks Junos...
High
Unreviewed
CVE-2025-52982
was published
Jul 11, 2025
A vulnerability classified as critical was found in RT-Thread 5.1.0. This vulnerability affects...
High
Unreviewed
CVE-2025-5867
was published
Jun 9, 2025
ProTip!
Advisories are also available from the
GraphQL API